Cyber SOC Analyst: Threat Detection & Incident Response

Sasso Consulting

Centurion

On-site

ZAR 420,000 - 660,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Sasso Consulting is seeking experienced Cyber Security SOC Analysts to monitor, detect, investigate and respond to threats across complex IT environments. You will analyze security alerts from SIEM/EDR/XDR and contribute to incident containment, triage and escalation.

Ideal candidates bring hands-on SOC experience, strong knowledge of Windows and Linux, and familiarity with MITRE ATT&CK. The role involves collaboration with cross-functional teams and continuous improvement of SOC processes.

Qualifications

  • Relevant diploma or degree in Information Technology, Cybersecurity, Information Security, Network Engineering or related discipline.
  • Typically 3–5 years of hands-on experience in cybersecurity monitoring, SOC operations, security event analysis or incident investigation.
  • Proven practical experience in an enterprise Security Operations Centre or equivalent security monitoring environment.
  • Strong hands-on experience with at least one enterprise SIEM platform.
  • Familiarity with EDR, XDR, firewall and network security monitoring technologies.
  • Strong understanding of cybersecurity threats, attack techniques and indicators of compromise.
  • Experience conducting security incident triage, classification and escalation.
  • Knowledge of Windows and Linux operating systems.
  • Understanding of Microsoft Active Directory, authentication systems and identity-related security threats.
  • Good understanding of TCP/IP networking, DNS, HTTP/HTTPS and common network protocols.
  • Familiarity with MITRE ATT&CK framework.

Responsibilities

  • Monitor enterprise security systems, networks, endpoints, applications and cloud environments for potential cybersecurity threats.
  • Analyse security alerts generated by SIEM, EDR, XDR, IDS/IPS, firewalls and other security monitoring technologies.
  • Conduct continuous security event monitoring and identify suspicious or unauthorised activities.
  • Investigate potential cybersecurity incidents and determine their severity, scope and business impact.
  • Distinguish genuine security threats from false positives.
  • Perform initial incident triage, classification and prioritisation.
  • Escalate critical security incidents to incident response teams or senior cybersecurity specialists.
  • Maintain accurate security monitoring records and incident investigation notes.
  • Support continuous improvement of SOC monitoring processes and procedures.
  • Work collaboratively with cybersecurity, infrastructure, networking and application teams.

Skills

SIEM
EDR
XDR
Firewalls
Windows
Linux
Active Directory
Threat intelligence

Education

Diploma/degree in IT/Cybersecurity

Tools

MITRE ATT&CK

Job description

Sasso Consulting is seeking experienced Cyber Security SOC Analysts to monitor, detect, investigate and respond to threats across complex IT environments. You will analyze security alerts from SIEM/EDR/XDR and contribute to incident containment, triage and escalation.

Ideal candidates bring hands-on SOC experience, strong knowledge of Windows and Linux, and familiarity with MITRE ATT&CK. The role involves collaboration with cross-functional teams and continuous improvement of SOC processes.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security SOC Analyst: Threat Monitoring & Response
Cyber Security SOC Analyst: Threat Monitoring & Response

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 420,000 - 660,000
Cyber Threat Hunter: Proactive Security Investigator
Cyber Threat Hunter: Proactive Security Investigator

Sasso Consulting • Centurion

On-site
ZAR 900,000 - 1,300,000
SOC Engineer: SIEM & Detection Architect
SOC Engineer: SIEM & Detection Architect

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 520,000 - 780,000
Cyber Incident Responder | Forensics & Threat Analysis
Cyber Incident Responder | Forensics & Threat Analysis

Sasso Consulting (Pty) Ltd • Johannesburg

On-site
ZAR 650,000 - 950,000
Remote SOC Analyst - Threat Detection & Incident Response
Remote SOC Analyst - Threat Detection & Incident Response

Placements24 • LegKraal Gate

Hybrid
ZAR 420,000 - 640,000
Remote work opportunities
Competitive salary
Health insurance
+2
Remote SOC Analyst: Threat Detection & Incident Response
Remote SOC Analyst: Threat Detection & Incident Response

Placements24 • Benoni

Hybrid
ZAR 360,000 - 660,000
Competitive salary
Fully remote position
Health insurance
+3
Remote SOC Analyst: Threat Monitoring & Incident Response
Remote SOC Analyst: Threat Monitoring & Incident Response

Placements24 • Mossel Bay

Hybrid
ZAR 320,000 - 460,000
Fully remote work
Continuous learning support
Global security team
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

Placements24 • LegKraal Gate

Hybrid
ZAR 420,000 - 640,000
Remote work opportunities
Competitive salary
Health insurance
+2
Remote SOC Analyst: Threat Detection & Incident Response
Remote SOC Analyst: Threat Detection & Incident Response

Placements24 • Mbombela (Nelspruit)

Hybrid
ZAR 350,000 - 550,000
Remote work
Training opportunities
Career advancement
+1
Cyber Security Analyst - SOC
Cyber Security Analyst - SOC

Placements24 • Klerksdorp

On-site
ZAR 300,000 - 520,000
Competitive salary
Fully remote work
Hands-on with cutting-edge security
+2